Attack Surface Management

Articles, news, and research on attack surface management.

Attack Surface Management

Attack Surface Management
Cybersecurity
Data Breaches

Don’t Use Production Data In Your Test Environment: The Impact Of Leaked Test Credentials

Read about why your third-party vendors and test environments should not contain production data, and how to protect your customers by taking a few steps.
Read more
Cybersecurity
Attack Surface Management

How to Secure Your Windows Environment: Top 10 Ways

Learn more about the basic elements to bolstering your Windows environment against cyber attackers.
Read more
Cybersecurity
Attack Surface Management

S3 Security Is Flawed By Design

There are two design flaws that cause most S3 data breaches. Read why we AWS should separate S3 into two products that clearly separate private and public.
Read more
Attack Surface Management
Cybersecurity

How to Secure Apache Tomcat 8 in 15 Steps

A practical guide to hardening and securing your Apache Tomcat Server with best practices to ensure your server is more secure than the default.
Read more
Cybersecurity
Attack Surface Management

What is Network Security?

Network security is the process of using physical and software security solutions to protect the underlying network infrastructure from unauthorized access
Read more
Attack Surface Management
Cybersecurity
Data Breaches

Check your Amazon S3 permissions or Someone Else will.

Companies regularly host sensitive data on Amazon's S3. Sometimes they forget to close it off to the internet. Here's a guide to make sure you don't.
Read more
Cybersecurity
Attack Surface Management

What is a Network Security Assessment?

This is a complete overview of network security assessments. Learn how to run a network security assessment in this in-depth post.
Read more
Attack Surface Management
Cybersecurity

What is The Difference Between Vulnerabilities and Misconfigurations?

What are misconfigurations? Truth be told vulnerabilities are not the source of most exploits, misconfigurations are.
Read more
Cybersecurity
Attack Surface Management

What is Email Spoofing?

Email spoofing is the creation of emails with a forged sender address enabled by the lack of in-built authentication in core email protocols.
Read more
Attack Surface Management
Cybersecurity

How to Secure Rsync

Rsync is a ubiquitous data backup tool that comes bundled with many operating systems, and configuring it properly for secure use is of utmost importance.
Read more
Cybersecurity
Attack Surface Management

What is Zero Trust? A Model for More Effective Security

This is a complete overview of Zero Trust. Learn about Zero Trust and how to implement it with this in-depth post.
Read more
Attack Surface Management
Cybersecurity

What Is an Attack Surface? Definition + Reduction Tips

This is a complete overview of attack surfaces. Learn how to reduce your digital, physical, and people attack surfaces in this in-depth post.
Read more
Attack Surface Management
Cybersecurity

How to Fix OS X El Capitan Security Flaws: Top 10 Remediation Tips

The highly anticipated OS X El Capitan release hit the market with a slew of vulnerabilities out of the gate. Learn how to fix the top 10 of the lot here.
Read more
Attack Surface Management
Cybersecurity

What Is a Vulnerability Assessment? And How to Conduct One

This is a complete overview of vulnerability assessments. Learn how to conduct a vulnerability assessment for your organization in this in-depth post.
Read more
Attack Surface Management
Cybersecurity

How to Build a Tough NGINX Server in 15 Steps

You want to use Nginx because of its speed, scalability, and lightweight architecture. Use our 15 step security guide to prevent security issues.
Read more
Attack Surface Management
Cybersecurity

How to Fix the Top 10 Django Security Vulnerabilities

Full stack Python with Django has its share of security vulnerabilities. Learn more about them here.
Read more
Deliver icon

Sign up for our newsletter

UpGuard's monthly newsletter cuts through the noise and brings you what matters most: our breaking research, in-depth analysis of emerging threats, and actionable strategic insights.
Free instant security score

How secure is your organization?

Request a free cybersecurity report to discover key risks on your website, email, network, and brand.
  • Check icon
    Instant insights you can act on immediately
  • Check icon
    Hundreds of risk factors including email security, SSL, DNS health, open ports and common vulnerabilities
Website Security scan resultsWebsite Security scan rating